Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229561 7.5 危険 sisfo kampus - Sisfo Kampus における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6137 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229562 7.5 危険 softacid - Link Exchange Lite における SQL インジェクションの脆弱性 - CVE-2006-6132 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229563 7.5 危険 tin.org - TIN におけるバッファオーバーフローの脆弱性 - CVE-2006-6122 2012-12-20 18:02 2006-11-26 Show GitHub Exploit DB Packet Storm
229564 7.5 危険 PicturesPro - PicturesPro Photo Cart の adminprint.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6093 2012-12-20 18:02 2006-11-24 Show GitHub Exploit DB Packet Storm
229565 5 警告 unverse.net - aBitWhizzy の abitwhizzy.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6084 2012-12-20 18:02 2006-11-24 Show GitHub Exploit DB Packet Storm
229566 7.5 危険 telaen - Telaen の Smarty_Compiler.class.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6081 2012-12-20 18:02 2006-11-24 Show GitHub Exploit DB Packet Storm
229567 9 危険 TWiki - TWiki における任意のコンテンツを読み取られる脆弱性 - CVE-2006-6071 2012-12-20 18:02 2006-11-17 Show GitHub Exploit DB Packet Storm
229568 7.5 危険 un4seen - Un4seen XMPlay におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2006-6063 2012-12-20 18:02 2006-11-21 Show GitHub Exploit DB Packet Storm
229569 6.8 警告 phpquickgallery - PHPQuickGallery の gallery_top.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6044 2012-12-20 18:02 2006-11-21 Show GitHub Exploit DB Packet Storm
229570 6.8 警告 phpwebthings - phpWebThings の core/editor.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6042 2012-12-20 18:02 2006-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213551 8.8 HIGH
Network
magento magento A SQL injection vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. A user with marketing privileges can execute arbitrary SQL queries in the database when ac… CWE-89
SQL Injection
CVE-2019-8134 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213552 6.5 MEDIUM
Network
magento magento A security bypass vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. A user with privileges to generate sitemaps can bypass configuration that restricts dire… NVD-CWE-noinfo
CVE-2019-8133 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213553 5.4 MEDIUM
Network
magento magento A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An authenticated user can inject arbitrary JavaScript code into code f… CWE-79
Cross-site Scripting
CVE-2019-8131 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213554 8.8 HIGH
Network
magento magento A SQL injection vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. A user with store manipulation privileges can execute arbitrary SQL queries by getting acc… CWE-89
SQL Injection
CVE-2019-8130 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213555 5.4 MEDIUM
Network
magento magento A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An authenticated user can exploit it by injecting an embedded expressi… CWE-79
Cross-site Scripting
CVE-2019-8129 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213556 5.4 MEDIUM
Network
magento magento A stored cross-site scripting (XSS) vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An authenticated user can exploit it by injecting malicious Javascript… CWE-79
Cross-site Scripting
CVE-2019-8128 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213557 8.8 HIGH
Network
magento magento A SQL injection vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An authenticated user with privileges to an account with Newsletter Template editing permi… CWE-89
SQL Injection
CVE-2019-8127 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213558 4.9 MEDIUM
Network
magento magento An XML entity injection vulnerability exists in Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3 or 2.3.2-p1. An authenticated admin user can craft document type definition for an XML represen… CWE-611
XXE
CVE-2019-8126 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213559 7.2 HIGH
Network
magento magento A remote code execution vulnerability exists in Magento 1 prior to 1.9.x and 1.14.x. An authenticated admin user can modify configuration parameters via crafted support configuration. The modificatio… NVD-CWE-noinfo
CVE-2019-8125 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm
213560 4.9 MEDIUM
Network
magento magento An insufficient logging and monitoring vulnerability exists in Magento 2.1 prior to 2.1.19, Magento 2.2 prior to 2.2.10, Magento 2.3 prior to 2.3.3. Failure to track admin actions related to design c… NVD-CWE-noinfo
CVE-2019-8124 2024-11-21 13:49 2019-11-6 Show GitHub Exploit DB Packet Storm